Senior Associate – Cyber Operations
Guarda esta oferta y sigue tu búsqueda
Crea una cuenta gratis para guardar empleos, crear alertas y volver a esta oferta desde tu panel.
Al continuar, aceptas nuestros Términos & Política de Privacidad.
At EX Squared LATAM, we partner with leading organizations across global and regional markets to connect exceptional professionals with high-impact career opportunities.
Our client is a leading global organization in the professional services and consulting industry, supporting businesses with complex technology, cybersecurity, risk, compliance, and transformation initiatives.
For this position, EX Squared LATAM is supporting our client with the recruitment and selection process. The selected professional will be hired directly by the client under their local payroll in Mexico, becoming part of their internal team.
Role Overview
We’re currently looking for a Senior Associate - Cyber Operations (Incident Response) to support cybersecurity operations and respond directly to security incidents within a complex, global environment.
This is a hands-on operational cybersecurity role focused on SOC operations, Incident Response, threat hunting, forensic analysis, vulnerability identification, remediation, security monitoring, and incident response playbooks.
The ideal candidate will bring at least 3 years of practical Cybersecurity Operations / Incident Response experience and will have participated directly in investigating and responding to security events rather than working primarily in coordination, ticket management, SLA tracking, escalation management, or ITIL-driven processes.
Location
Mexico. Candidates located in Mexico City or Guadalajara are highly preferred.
- For professionals based in Mexico City or Guadalajara, the position follows a hybrid model with onsite attendance approximately 2-3 days per week.
- Candidates based in other cities in Mexico may be considered for a remote arrangement; however, Mexico City and Guadalajara profiles will receive priority.
Contract Duration
Permanent, direct employment with the client.
This is a 100% payroll position in Mexico.
Working Hours
This position operates under 10-hour shifts, with one of the following schedules:
- Sunday through Wednesday, or
- Wednesday through Saturday.
Available shifts are:
- 7:00 a.m. - 5:00 p.m., or
- 1:00 p.m. - 11:00 p.m.
Candidates must be comfortable working within one of these schedules and adapting to business needs.
Language Requirement
Advanced English.
Candidates must be comfortable communicating technical risks, incident findings, and security recommendations in English while collaborating directly with U.S.-based and multicultural teams.
What you'll do
- Participate directly in cybersecurity monitoring, incident investigation, containment, remediation, and response activities.
- Investigate security incidents and alerts to determine scope, severity, impact, and appropriate mitigation actions.
- Conduct threat hunting activities to identify suspicious behaviors and potential threats that may not be detected through standard alerts.
- Support forensic analysis and incident investigations to identify root cause and understand attacker activity.
- Identify vulnerabilities and insecure configurations and coordinate appropriate remediation actions.
- Develop, implement, maintain, and improve incident response processes and playbooks.
- Configure and monitor security tools, including alerts, correlation rules, dashboards, and reporting mechanisms.
- Apply threat intelligence to security monitoring, vulnerability detection, and incident investigations.
- Help determine risk severity and appropriate mitigation approaches for security events.
- Incorporate lessons learned from incidents into improved preventive and detective security controls.
- Support automation and orchestration initiatives that improve the efficiency of monitoring and response processes.
- Collaborate with internal technology, infrastructure, security, and business teams during investigations and remediation efforts.
- Document incident findings, technical evidence, remediation actions, and recommendations clearly.
- Stay current with emerging threats, attacker techniques, security technologies, and cybersecurity operations practices.
What you'll bring
- Minimum 3 years of hands-on experience in Cybersecurity Operations, SOC, Incident Response, or similar operational security roles.
- Direct experience participating in security incident investigation and response.
- Hands-on exposure to threat hunting and security monitoring activities.
- Experience supporting or performing forensic analysis during security investigations.
- Experience identifying vulnerabilities, i